[CYBERDIGEST]
⊞ Dashboard ⚡ Intelligence 📝 Reports 📚 Global Threats 💻 Hack Lab 🗄️ Resources ⌬ 0xJerry's Lab
📡 RSS Feed
System Online

Tag

#Piwigo

blogHIGH 7.2

Understanding and Defending Against CVE-2026-85750: Arbitrary File Read and Remote Code Execution in Piwigo

CVE-2026-85750 is a critical vulnerability in Piwigo, a popular open-source photo gallery software, that allows for arbitrary file read and remote code execution. This vulnerability exists due to insufficient validation and unsafe processing of user-supplied image files when using the Imagick library. Successful exploitation can lead to unauthorized server-side file writes and remote code execution. This vulnerability has been patched in Piwigo version 16.4.0.

Sep 26, 20261 source